Risk Controls Self-Assessment (RCSA) Control Owner Insider Threat
BNY
Pittsburgh, PA
10 days ago
Job Description
Join BNY as a Risk Controls Self-Assessment Control Owner where you'll lead initiatives to assess and enhance insider threat controls. This role is vital for ensuring compliance and improving risk management strategies within a collaborative team environment.
Key Responsibilities
Host and support business units in performing Risk Control Self-Assessments (RCSA) for insider threat controls.
Ensure alignment with regulatory requirements and organizational policies throughout the assessment process.
Continuously monitor the effectiveness of insider threat controls across the organization.
Develop and maintain metrics and reporting mechanisms to evaluate control performance.
Design and maintain scorecards to summarize insider threat control performance and effectiveness metrics.
Partner with Insider Risk, Compliance, and Audit teams to ensure proper governance and oversight.
Required Qualifications
Bachelor's degree in risk management, Business Administration, Cybersecurity, or a related field.
5+ years of experience in risk management, internal controls, audit, or insider threat programs in a highly regulated environment.
Strong understanding of RCSA processes and enterprise risk management frameworks (e.g., COSO, NIST).
Familiarity with insider threat risks, behaviors, and mitigation strategies in financial institutions.
Exceptional analytical and problem-solving skills.
Strong written and verbal communication skills.
Proficiency in developing metrics, scorecards, and dashboards (e.g., Excel, Power BI, Tableau).
Ability to manage multiple priorities and deadlines in a dynamic environment.
Preferred Qualifications
Experience with insider threat detection and monitoring tools.
Knowledge of regulatory requirements (e.g., FFIEC, SOX, GLBA) and their application to insider risk.
Professional certifications such as CISA, CRISC, CISSP, or similar.
Benefits & Perks
Highly competitive compensationFlexible global resources and toolsGenerous paid leaves, including paid volunteer time